banav3app[.]xyz
“Et øjeblik ...”
banav3app.xyz — Непроверенный. Сводка доказательств: VirusTotal 8/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 78/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain banav3app.xyz indicates a high‑risk phishing operation that remains active as of the report date, July 24, 2026. The site was registered through NameSilo, LLC on February 21, 2026 and is hosted behind Cloudflare’s network (AS13335), resolving to the IPv6 address 2606:4700:3037::6815:1782 located in the United States. The authoritative nameservers are ns1.ns306.parklogic.com and ns2.ns306.parklogic.com, both typical of domains parked on shared infrastructure. The web server returns HTTP status 200 and presents a page titled "Et øjeblik …", a title that provides no indication of the underlying content or targeted brand. The SSL certificate presented is identified as WE1, suggesting a standard Cloudflare‑issued certificate without further validation details.
Threat intelligence feeds reinforce the malicious assessment. VirusTotal has recorded five detections out of ninety‑five scanned security vendors, demonstrating that multiple antivirus and URL‑filtering engines flag the domain as malicious. Gridinsoft assigns a trust score of 0 out of 100, and Scamadviser rates the site at 30 out of 100, both indicating extreme distrust. The domain appears on a single security blocklist and is actively blocked by PhishDestroy, confirming that at least one reputable anti‑phishing service has recognized it as a phishing source.
The available evidence points to a classic phishing infrastructure: a newly created domain, rapid deployment behind a reputable CDN, minimal trust scores, and detection by several independent security vendors. However, the precise phishing campaign details—such as the credential‑harvesting page layout, targeted brand, or lure technique—remain unknown because the page content has not been publicly dissected. Defenders should therefore treat any traffic to banav3app.xyz as malicious, block the domain at network perimeters, and update URL filtering and endpoint protection rules accordingly.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание